Security Control Assessor (SCA)
Novul Solutions
Job Description
Job Description
We are seeking an experienced Security Control Assessor to support the assessment, validation, and authorization of DoD information systems. This role requires a strong background in the Risk Management Framework (RMF) process, security control assessment, and cybersecurity compliance. The ideal candidate will be skilled in evaluating how security controls are implemented, measuring their resilience and reliability, and determining how changes in operational or environmental conditions may affect system security.
Key Responsibilities:
- Conduct in-depth security control assessments for DoD information systems in accordance with NIST SP 800-53, NIST SP 800-37, DoD RMF, and JSIG requirements.
- Communicate government-approved mitigation and remediation guidance to system owners in support of the RMF process.
- Assess and validate the implementation of security controls, including how they support system resilience, reliability, and overall cybersecurity posture.
- Apply and interpret the Confidentiality, Integrity, and Availability (CIA) triad and related categorization impact levels (High, Moderate, Low) for assigned systems and programs.
- Validate inherited security controls from hosted, interconnected, or external systems.
- Evaluate program compliance with controls related to Ports, Protocols, and Services (PP&S), including proper handling, management, and review of log files.
- Lead the review, preparation, and quality assurance of Authorization to Operate (ATO) packages and supporting documentation.
- Identify control gaps, document findings, and provide actionable recommendations for remediation.
- Coordinate with stakeholders, system owners, engineers, and cybersecurity teams to ensure security requirements are properly addressed.
- Support assessment activities, artifact reviews, interviews, and technical validations required for authorization decisions.
8+ years of experience in cybersecurity.
5+ years of experience in Certification and Accreditation (C&A), Assessment and Authorization (A&A), or closely related cybersecurity compliance functions.
Demonstrated expertise with the Risk Management Framework (RMF).
Strong knowledge of NIST SP 800-37, NIST SP 800-53, and CNSSI 1253.
Experience supporting DoD security authorization efforts and control validation activities.
Proven ability to review and assess system security documentation for completeness and accuracy.
Previous leadership or team lead experience.
Strong written and verbal communication skills, with the ability to explain assessment findings and remediation actions to technical and non-technical stakeholders.
Bachelor’s Degree required.
- Paid Time Off PTO):TEN (10) Paid days off & FIVE (5) Floating days off.
- Holidays: 11 Paid Holidays. Flex time can be utilized instead of holiday time usage.
- Payroll: Paid Bi-Monthly.
- 401(k): Partnered with the SECOND LARGEST Retirement plan provider in the U.S. Guaranteed 3% match. Eligibility – 21 years of age or older, after 3 months of employment
- Individual or company-wide performance and recognition awards (Quarterly
Health Benefits:
- UNITED HEALTHCARE PPO, extensive national coverage.
- INCLUDES: Medical/Dental/Vision/HSA.
- Eligible on the first of the month, immediately after the start date.
- Submit the enrollment form within 30 days of your start date otherwise, you will have to wait until October for the new year enrollment.
Quality of Life Benefits:
- Training & Career Development Reimbursement of Tuition and training needed to support career development.
- $150 monthly reimbursement contribution paid monthly towards parking expenses.
- Receipts must be submitted by the close of business on the 25th of each month.
- Reimbursements will be paid on the first payroll AFTER reimbursements are submitted each month.
Special Benefits:
- Performance bonus – Project-based
- Yearly bonus – Company based
- ...Job Description Job Description SECURITY CLEARANCE REQUIREMENT: TS, WITH SCI ELIGIBILITY ***POSITION REQUIRES US CITIZENSHIP*** Position Title: Security Control Assessor (SCA) II Location: Arlington, VA (on-site) Salary Range: TBD based on experience Position...SuggestedWork at office
- ...Job Description Job Description GAMA-1 Technologies is seeking a Senior Security Control Assessor to support cybersecurity assessments and compliance activities across federal systems and national security environments. In this role, you will evaluate security controls...SuggestedLocal area
$70k
...addressing intricate issues and ensuring a more secure future. AGE Solutions is looking for a Security Control Assessor, Intermediate to join our team in support of a... ...Coordinate logistics, test plans, and scope with the SCA Team Lead. Perform vulnerability assessments...SuggestedContract workImmediate startRemote workRelocation$102.83k - $150k
...Salary Range: $102,831.00 - $150,000.00 Security Clearance: TS/SCI Level of Experience: Mid... .... Below are the salary ranges: Security Controls Accessor: $85,185 - $135,000 Sr.... ...What you will do The Security Controls Assessor plays a critical role in evaluating, validating...SuggestedFull timeWork experience placementLocal areaWorldwide- ...Job Description Job Description Benefits: ~ Competitive salary About this Role: We are looking for a SME Security Control Assessor that supports security control assessment activities for HHS-ACF information systems by applying NIST security controls and...SuggestedWork at officeLocal areaWork from homeFlexible hours
- ...assets, processes, policies, and people delivering value. See Link To the ProSidian website at Description ProSidian Seeks a Security Controls Assessor / ISSO | Human Capital Programmatic Evaluation & Compliance - Cybersecurity & Compliance [NSF0083083] for Program Support...Full timeContract workTemporary workFor contractorsH1bWork at officeFlexible hours
$130k - $150k
...Job Description Job Description Senior Security Control Assessor Overview: TSA is currently seeking a Senior Security Control Assessor who will serve as a Functional Lead and provide support to our NAVAIR customer in the DC Metro area. Roles/Responsibilities...$87k - $198k
...Security Control Assessor and System Certification Specialist, Senior The Opportunity: Function as a Senior System Certification Specialist... ...in NIST security guidance and security control assessment (SCA) processes using the NIST Risk Management Framework (RMF). Guide...Full timeContract workPart timeLocal areaRemote work$155.62k - $210.54k
...Job Qualifications: Skills: RMF, Security Content Automation Protocol (SCAP), Security... ...to make a personal impact as a Security Control Assessor supporting customer activities. GDIT is... ...: 10+ yrs (Must have 4+ yrs of hands-on SCA experience) Clearance : TS/SCI with...Full timeTemporary workPart timeImmediate startRemote workWorldwideFlexible hours- ...TLA is seeking a Security Assessor for evaluating the effectiveness of security measures and controls within the organization's information systems and software applications to ensure the protection of data and compliance with industry standards and regulations. This...Work experience placement
- Direct experience in NIST security control assessments Direct experience in System Security Plan (SSP) development Direct experience conducting or supporting NIST-based risk assessments Demonstrated success interfacing directly with system owners and executive management...
- ...preview of the full benefits package. Role: Mid-Level Security Assessor Location: Remote (Must be available to work EST hours)... ...required Conducting independent assessments of security controls as documented in the System Security Plan (SSP) Conducting...Local areaImmediate startRemote work
- ...full-time position for a CMMC Certified Assessor (CCA) at CyberRx, Inc. You need to be... ...collaborators dedicated to safeguarding national security and committed to partnering with our... ...requirements related to handling Controlled Unclassified Information (CUI). ·...Full timeFor contractors
- ...IT Security Analyst / Assessor NXTKey Corporation has been delivering Information Technology, Information management, Information Assurance... ...effectiveness of current security measures. IT Security Control Assessor needs to possess the following skills: ~5+...Contract workWork experience placementWork at office
- ...Consulting Travel Required: Up to 25% Clearance Required: Ability to Obtain Secret What You Will Do: Conduct FISMA security control assessments in accordance with NIST SP 800-53 and NIST SP 800-53A Support system authorization efforts across the RMF lifecycle...Temporary workFlexible hours
- ...date: CISSP-ISSAP, CISSP-ISSEP, CISSP, Security+ CE, CySA+, PPDA, Agile IC, or SNOW App Dev... ...looking for a Regional Cyber Security Assessor to become part of our Federal Strategic... ...established operating procedures for data access controls, storage, transmission, and destruction...Local areaRemote workOverseas
- Assessor - Central Asia Contractor Position Status: Level: Mid-level, independent contractor Location: Central Asia Main Purpose of the... ...contractor with experience evaluating ownership, management and control of private companies incorporated in Central Asia. Job...Full timeFor contractors
- ...candidate will work within a collaborative environment, focusing on risk management processes and continuous monitoring of cybersecurity controls. A Bachelor's degree in a related field is required along with knowledge of cybersecurity principles. #J-18808-Ljbffr Office of...Work at office
$95k - $143.6k
...responsible for performing information security reviews of third parties that provide services... ...to determine if information security controls are in place and documenting the... ...Required Qualifications 2+ years as a cyber Assessor Experience in Information Security and/...Work at officeFlexible hoursShift workDay shift- ...Focuses on solving conflict, not blaming; Maintains confidentiality; Listens to others without interrupting; Keeps emotions under control; Remains open to others' ideas and tries new things. Judgement - Displays willingness to make decisions; Exhibits sound and accurate...Work at office
- ...Type Exempt FT Phone (***) ***-**** Email ****@*****.*** About the Opportunity The IT Security Specialist III will lead and conduct in-depth assessments of security control effectiveness across classified and unclassified information systems, ensuring compliance...Contract workLocal areaRemote work
$132.8k - $219.1k
...appropriate internal and./or external resources for specific activities required to effectively evaluate claims, such as Subro, Risk Control, nurse consultants and fire or fraud investigators and other experts. Verify the nature and extent of injury or property damage...Local area$121k - $140k
...commensurate experience Minimum of seven years handling complex litigated bodily injury claims Familiarity with owner and contractor-controlled insurance policies and programs as well as wrap policies, is a plus Experience handling New York Labor Law claims is a plus...Temporary workFor contractorsWork at officeRemote work3 days per week- ...Focuses on solving conflict, not blaming; Maintains confidentiality; Listens to others without interrupting; Keeps emotions under control; Remains open to others' ideas and tries new things. Judgement - Displays willingness to make decisions; Exhibits sound and accurate...Work at office
$39 - $44 per hour
...Job Description Job Description Salary: $39-$44 Job Title: PASRR Assessor Reports to: Chief Operating Officer (COO) Location: Washington, DC Position Type: PRN (As Needed) Exempt Status: Non-Exempt General Summary The Assessor Reviewer II -...ReliefWork at officeLocal areaWeekday work- ...Strong knowledge of contract, tort, subrogation, contribution, indemnity and other related law. • Able to effectively direct and control work of outside counsel and TPA. • Superior verbal and written communication skills. • Excellent evaluation and analytical skills...Contract work
$72.91k - $95k
...minimum seven) technical operations colleagues for a wide span of control; may delegate some duties to others within the unit. Identifies... ...Auditory/Visual: Hearing, vision and talking NOTE: Credit security clearance, confirmed via a background credit check, is required...Contract workWork at officeLocal areaFlexible hours$23.16 per hour
...and analyzes various complex potential claims with emphasis on controlling losses through effective managed care. This includes following... ...and Privacy Policies and Procedures as well as all data security guidelines established within the Company’s Handbook of Privacy...For contractorsWork at officeLocal area- ...key business partner through our Castle High Value and EXL Risk Control service offerings. We offer a variety of field inspections and... ...be expected to manage assignments you accept, successfully secure customer appointments within a local territory and complete...For contractorsWork at officeLocal areaWork from home
- ...Partners with Lead Appraiser to resolve ongoing requests and make process improvement recommendations to eliminate addendums and quality control rejections. Participates in monthly Appraiser meeting. Meets all department turn time expectations and proactively escalates...Local area
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Control Assessor (SCA). Be the first to apply!



